Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - What can The Martian Teach us about Cyber Security
Articles

What can The Martian Teach us about Cyber Security

ISBuzz TeamBy ISBuzz TeamDecember 1, 20156 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
The Martian Teach us about Cyber Security
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

If you haven’t read “The Martian” or seen the movie, stop right now and go read it. It’s a great book, and this article will contain spoilers. You’ve been warned.

As a security professional, there have been times when I felt like I was stranded on Mars. When attacks happen, time isn’t on your side and sometimes you have to do everything yourself, relying on your own wits to get the job done. While reading The Martian, I couldn’t help but consider what skills and thought processes would help a security professional handle an incident. In other words, what would Mark Watney do?

Watney’s analytical approach and ability to think outside the box helped him survive in an environment that did everything it could to kill him. Some of today’s advanced cyber threats have skills and resources that far outweigh the average organization, but they don’t stand a chance against security teams with the right mindset and a little bit of luck.

Adapt or die

When you are stranded in the near-vacuum of Mars’ atmosphere with only enough food to survive a few hundred days, it is easy to understand the need to adapt to your environment or die. However, security professionals need to approach their purpose with the same level of determination. The bad guys already understand this. After all, their income is based entirely off adapting to your network environment. So they monitor your threat feeds, analyze your tools and change their malware and tactics until they are able to circumvent your security measures without detection.

We must stay one step ahead of them. Keep up with cyber-attack trends, create a threat intelligence function, learn something from every security incident and spend a moment of every day thinking about how you can make your network as inhospitable to outsiders as the surface of Mars.

Plan for failure

A plan is good until it makes first contact with the enemy. Watney had backup plans for his backup plans. Part of that came from NASA’s culture of building redundancies, but Watney also understood the danger of being unprepared when a critical system failed. Unfortunately, systems fail and tactics may prove ineffective. You cannot rely on success, but you can prevent some failures from becoming catastrophes.

For example, take internal network security. Firewalls and access controls are good, but they are not infallible. If an attacker makes it through your perimeter, what is stopping them from taking everything on the network? Proper network segmentation is a great place to start. Just as the “Hermes” spacecraft has internal airlocks in case of a hull breach, segmentation confines intruders to only a small part of the internal network.

Testing and rehearsals are critical

Even though planning for failure is necessary, we should also be doing everything in our power to prevent failure. Watney tested and rehearsed each of his plans ad nauseam. When he modified the rover, he spent days driving it around the Hab to make sure everything worked correctly and it could withstand a beating.

Security tools need to be stressed and pen tested to ensure they can hold under pressure, but this approach is also applicable to processes. Do you have an incident response plan? (You should) Have you tested that plan? Rehearse everything, and do it under different circumstances, so you can identify weaknesses and shortcomings before real danger is present.

Utilize lateral thinking

While Watney had advanced machinery and materials designed specifically for Mars, none of it was meant for use beyond 31 days. Watney had to stretch it for a year and a half and use it in ways it wasn’t intended. To do that, he had to get creative. He modified machines, adapted materials and even jury-rigged a potato farm in his living quarters.

In cyber-security, organizations cannot afford to buy a new tool for every specific need. In fact, attempting to do so is ineffective and can lower the overall security. Instead, we must adapt our tools. Oftentimes, we can use them for purposes the designer did not envision and make them work with our other tools in creative ways. Again, this is also applicable to processes. What doesn’t work at another organization may work in yours. Maybe your team is versatile and benefits from regular role reassignments. Maybe your tools are also beneficial to network operations, which can help garner more funding for future cooperative investments. Don’t be afraid to try new and crazy things. It just might save you.

Remember to laugh

Cyber-attacks are stressful situations, and it is important to keep a level head and make good decisions. Watney was a compulsive jokester. From making wisecracks to Houston to trolling the media back on Earth, he never failed to laugh at the ridiculousness of his situation. This attitude kept him moving forward when it was so tempting to just give up and die on Mars.

Laughing keeps our spirits up and helps put our coworkers at ease. This is critical because responding to attacks requires fast reactions and good decisions. When we remain calm, we are better able to think laterally and work with others to solve a problem. Never forget to laugh.

Security may not seem like a life-or-death situation, but failing to contain a data breach can have far reaching consequences, from a loss of revenue and customer confidence to literal real-world danger. And sometimes the bad guys appear unbeatable. But if we can tackle this problem with the same mindset and fervor that Mark Watney used to survive on Mars, the attackers don’t stand a chance.

[su_box title=”TK Keanini, CTO, Lancope” style=”noise” box_color=”#0e0d0d”]Lancope LogoTK Keanini, is CTO, of Lancope. Lancope, is a leading provider of network visibility and security intelligence to defend enterprises against today’s top threats. By collecting and analyzing NetFlow, IPFIX and other types of flow data, Lancope’s StealthWatch® System helps organizations quickly detect a wide range of attacks from APTs and DDoS to zero-day Malware and insider threats. Through pervasive insight across distributed networks, including mobile, identity and application awareness, Lancope accelerates incident response, improves forensic investigations and reduces enterprise risk. Lancope’s security capabilities are continuously enhanced with threat intelligence from the StealthWatch Labs research team.[/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

May 20, 20265 Mins Read

Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

May 6, 20265 Mins Read

Why OSINT deserves the same status as other intelligence disciplines

March 17, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}